Beveiligingsadvies

CVE-2025-28100

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-04-15 00:00:00
Laatst bijgewerkt 2025-04-16 14:22:36
Toegewezen door mitre
CVSS-score 9.8
Status PUBLISHED

Beschrijving

A SQL Injection vulnerability in dingfanzuCMS v.1.0 allows a attacker to execute arbitrary code via not filtering the content correctly at the "operateOrder.php" id parameter.